[Snyk] Security upgrade com.google.firebase:firebase-admin from 9.5.0 to 9.7.1#1053
[Snyk] Security upgrade com.google.firebase:firebase-admin from 9.5.0 to 9.7.1#1053
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-IONETTY-14423947 - https://snyk.io/vuln/SNYK-JAVA-IOGRPC-13786834
|
|
|
There was a problem hiding this comment.
Pull request overview
This PR upgrades the Firebase Admin SDK from version 9.5.0 to 9.7.1 to address two security vulnerabilities: a CRLF Injection vulnerability (SNYK-JAVA-IONETTY-14423947) and an Allocation of Resources Without Limits or Throttling vulnerability (SNYK-JAVA-IOGRPC-13786834).
Changes:
- Upgraded
com.google.firebase:firebase-admindependency from version 9.5.0 to 9.7.1 in the Maven POM file
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.



Snyk has created this PR to fix 2 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
backend/pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-IONETTY-14423947
9.5.0->9.7.1Proof of ConceptSNYK-JAVA-IOGRPC-13786834
9.5.0->9.7.1No Known ExploitImportant
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Allocation of Resources Without Limits or Throttling
🦉 CRLF Injection